cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
354
Views
0
Helpful
2
Replies

NAT question on 8.4

tahequivoice
Level 2
Level 2

If I have servers on a DMZ that use REAL public IP's, do I need to NAT them to be reached from outside like I would for a server that is on the inside that is routed?

Say my inside is 192.168.100.x, and I have a server with 8.1.8.12 as the IP inside, and I point a rout to it, but I need to do a 1:1, 8.1.8.12 8.1.8.12 static NAT.

Do I need to do the same if it is on a DMZ interface that is the same network as the real IP like I would if the Inside needs to reach DMZ servers?

NAT (outside,DMZ) source static servers servers destination  DMZ DMZ

1 Accepted Solution

Accepted Solutions

Julio Carvajal
VIP Alumni
VIP Alumni

Hello,

No, that is not need it as it is already a public and routable ip address.

Also remember that on 8.3 and prior versions NAT-control is not enabled by default.

Regards,

Do rate helpful posts

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

View solution in original post

2 Replies 2

Julio Carvajal
VIP Alumni
VIP Alumni

Hello,

No, that is not need it as it is already a public and routable ip address.

Also remember that on 8.3 and prior versions NAT-control is not enabled by default.

Regards,

Do rate helpful posts

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

I forgot about the Nat-Control. Thats right, I remember now. Thanks.

Review Cisco Networking products for a $25 gift card